Software Engineer, Identity & Access

Posted 10 Days Ago
Be an Early Applicant
Stockholm, SWE
In-Office
Mid level
Artificial Intelligence • Software
The Role
Design and build the identity and access management system for Lovable's Apps Platform. Implement authentication flows and manage secrets infrastructure while ensuring secure user app isolation and effective incident response.
Summary Generated by Built In

TLDR;
You'll own the identity layer that powers every Lovable app — from auth flows and session management to RBAC, API keys, and multi-tenancy isolation. This is a high-trust, high-impact role at the intersection of security, product, and platform engineering, shaping how millions of end users authenticate into AI-generated applications.
About Lovable & the Apps Platform

Lovable is an AI-powered software creation platform. Millions of users use Lovable to go from idea to working application, generating hundreds of thousands of apps every day.

The Lovable Apps Platform is what makes those generated apps actually run in production. The moment a user hits deploy, the Apps Platform takes over — provisioning the database, handling user auth, storing files, serving the app over a custom domain, capturing logs, and metering usage. It's the full backend and hosting layer for every app built on Lovable, designed so creators never have to think about infrastructure to ship something real.

The Apps Platform is growing fast, and we're investing heavily in each layer of the stack — building deeper ownership over the services that power our users' apps so we can move faster, scale better, and shape the product experience us and our users actually want.

The Role

We're looking for a senior identity and access specialist to own authentication, authorization, and user management across the Lovable Apps Platform. You'll build the identity layer that both Lovable's own platform and every user-generated app depend on — from auth flows and session management to RBAC, API keys, and multi-tenancy isolation.

Identity is the front door to every Lovable app. As we move from a bundled auth stack to our own composable identity layer, we need someone who can build a system that's both developer-friendly and security-hardened. You'll shape how millions of end users authenticate into AI-generated applications — and how Lovable's own platform manages access, secrets, and trust. This is a high-trust, high-impact role at the intersection of security, product, and platform engineering.

What You'll Do
  • Design and build the Apps Platform's identity and access management system, covering both platform-level auth (Lovable users) and app-level auth (end users of Lovable-generated apps)

  • Implement authentication flows: OAuth 2.0/OIDC, magic links, social login providers, MFA, and session management

  • Build a robust authorization model: RBAC, row-level security, API key management, and fine-grained permissions

  • Own multi-tenancy isolation — ensuring that user apps, data, and credentials are securely separated

  • Manage secrets infrastructure: secure storage, rotation, and access control for database credentials, API keys, and service tokens

  • Migrate identity services from the current bundled setup to a fully owned, composable identity layer without breaking user sessions

  • Operate auth as a production service: monitoring, alerting, incident response, and capacity planning for a system on the critical path of every request

  • Collaborate with the AI and product teams to ensure that generated apps get secure-by-default auth without requiring user expertise

What We're Looking For
  • Deep expertise in identity and access management: OAuth 2.0, OIDC, SAML, JWT, session management, and token lifecycle

  • Experience building or operating auth systems at scale — ideally in a multi-tenant SaaS or PaaS context

  • Strong security mindset: you treat credential leakage, privilege escalation, token theft, and tenant isolation as first-class concerns

  • Experience with RBAC/ABAC models and row-level security in Postgres

  • Familiarity with identity providers and auth services (Auth0, Supabase Auth, Clerk, Firebase Auth, Keycloak, etc.)

  • Comfortable with TypeScript across backend services and API layers

  • You've migrated auth systems or transitioned between identity providers in production without breaking user sessions

  • Operational instincts: you think in uptime, latency percentiles, and blast radius — auth outages take down everything downstream

  • You’re based in Stockholm or ready to relocate - this is an on-site, 5-days-a-week role.

Nice to Have
  • Experience with secrets management tools (Vault, AWS Secrets Manager, or similar)

  • Background in compliance-relevant auth work (SOC 2, GDPR, HIPAA)

  • Familiarity with Supabase Auth internals (GoTrue) or similar open-source auth servers

  • Experience designing auth for AI-generated or low-code applications

  • Familiarity with managed cloud services (AWS, GCP) and the tradeoffs of buy-vs-build for identity infrastructure

Our tech stack

We're building with tools that both humans and AI love. Lovable software engineers are capable of working across the whole stack. Examples of tech in our stack include:

  • Frontend: React and Typescript.

  • Backend: Golang and Rust.

  • Cloud: Cloudflare, GCP, AWS, Modal.

  • Data: Clickhouse, Firestore, Spanner, BigQuery.

  • DevOps & Tooling: CI/CD pipelines, OTEL, Kubernetes, Terraform.

And always on the lookout for what's next!

 

About your application

  • Please submit your application in English - it’s our company language so you’ll be speaking lots of it if you join

  • We treat all candidates equally - if you’re interested please apply through our careers portal

Skills Required

  • Deep expertise in identity and access management: OAuth 2.0, OIDC, SAML, JWT
  • Experience building or operating auth systems at scale
  • Familiarity with identity providers and auth services (Auth0, Supabase Auth, etc.)
  • Comfortable with TypeScript across backend services
  • Experience with RBAC/ABAC models and row-level security in Postgres
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
351 Employees
Year Founded: 2023

What We Do

Lovable is a platform that lets you build apps and websites by chatting with AI. We are a small European team of serial founders, product engineers, physicists, competitive programmers and people who just care about building a great product quickly. We're on a mission to build the last piece of software that the world will ever need.

Similar Jobs

Cloudflare Logo Cloudflare

Forward Deployed Engineer

Cloud • Information Technology • Security • Software • Cybersecurity
Remote or Hybrid
Sweden
4400 Employees

ServiceNow Logo ServiceNow

Enterprise Account Executive

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Remote or Hybrid
Stockholm, SWE
29000 Employees

Datadog Logo Datadog

Sales Executive

Artificial Intelligence • Cloud • Security • Software • Cybersecurity
Easy Apply
Hybrid
Stockholm, SWE
6500 Employees
100K-100K Annually

Datadog Logo Datadog

Senior Sales Engineer

Artificial Intelligence • Cloud • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
4 Locations
6500 Employees

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
31 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account